|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":Feb. 9, 2026, 12:59 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 228831 | 6.8 | 警告 | リアルネットワークス | - | RealNetworks RealPlayer におけるスタックベースのバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2012-4987 | 2012-11-6 14:36 | 2012-11-4 | Show | GitHub Exploit DB Packet Storm |
| 228832 | 3.6 | 注意 | アップル | - | Apple iOS 6.0.1 未満のパスコードロックの実装におけるパスコード要求を回避される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2012-3750 | 2012-11-6 14:33 | 2012-11-3 | Show | GitHub Exploit DB Packet Storm |
| 228833 | 6.8 | 警告 | Irfan Skiljan | - | IrfanView 用 FlashPix PlugIn で使用される libfpx におけるメモリ二重解放の脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2012-0025 | 2012-11-6 14:23 | 2012-11-2 | Show | GitHub Exploit DB Packet Storm |
| 228834 | 7.5 | 危険 | Morbus Iff | - | Drupal 用 Activism モジュールにおけるアクセス制限を回避される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2012-4498 | 2012-11-6 14:21 | 2012-08-29 | Show | GitHub Exploit DB Packet Storm |
| 228835 | 2.1 | 注意 | Devsaran | - | Drupal 用 Elegant Theme モジュールにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2012-4497 | 2012-11-6 14:19 | 2012-08-15 | Show | GitHub Exploit DB Packet Storm |
| 228836 | 2.1 | 注意 | Roy Baxter | - | Drupal 用 Better Revisions モジュールにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2012-4493 | 2012-11-6 14:18 | 2012-08-8 | Show | GitHub Exploit DB Packet Storm |
| 228837 | 4 | 警告 | Boombatower | - | Drupal 用 Subuser モジュールにおけるロールを変更される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2012-4487 | 2012-11-6 14:07 | 2012-07-25 | Show | GitHub Exploit DB Packet Storm |
| 228838 | 6.8 | 警告 | Boombatower | - | Drupal 用 Subuser モジュールにおけるクロスサイトリクエストフォージェリの脆弱性 |
CWE-352
同一生成元ポリシー違反 |
CVE-2012-4486 | 2012-11-6 14:04 | 2012-07-25 | Show | GitHub Exploit DB Packet Storm |
| 228839 | 7.5 | 危険 | Curtis Galloway | - | libexif の exif-entry.c の exif_entry_get_value 関数における整数アンダーフローの脆弱性 |
CWE-189
数値処理の問題 |
CVE-2012-2841 | 2012-11-6 12:28 | 2012-07-12 | Show | GitHub Exploit DB Packet Storm |
| 228840 | 7.5 | 危険 | Curtis Galloway | - | libexif の exif-entry.c の exif_convert_utf16_to_utf8 関数におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-189
数値処理の問題 |
CVE-2012-2840 | 2012-11-6 12:27 | 2012-07-12 | Show | GitHub Exploit DB Packet Storm |
Update Date:April 26, 2026, 4:08 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 198271 | 5.9 |
MEDIUM
Network |
gm | shanghai_onstar | A Man-in-the-Middle issue was discovered in General Motors (GM) and Shanghai OnStar (SOS) SOS iOS Client 7.1. Successful exploitation of this vulnerability may allow an attacker to intercept sensitiv… |
CWE-200
Information Exposure |
CVE-2017-12697 | 2024-11-21 12:10 | 2018-01-10 | Show | GitHub Exploit DB Packet Storm |
| 198272 | 8.8 |
HIGH
Network |
gm | shanghai_onstar | An Improper Authentication issue was discovered in General Motors (GM) and Shanghai OnStar (SOS) SOS iOS Client 7.1. Successful exploitation of this vulnerability may allow an attacker to subvert sec… |
CWE-287
Improper Authentication |
CVE-2017-12695 | 2024-11-21 12:10 | 2018-01-10 | Show | GitHub Exploit DB Packet Storm |
| 198273 | 6.1 |
MEDIUM
Network |
stivasoft | phpjabbers_file_sharing_script | PHPJabbers File Sharing Script 1.0 has stored XSS in the comments section. |
CWE-79
Cross-site Scripting |
CVE-2017-12813 | 2024-11-21 12:10 | 2017-12-30 | Show | GitHub Exploit DB Packet Storm |
| 198274 | 6.1 |
MEDIUM
Network |
stivasoft | phpjabbers_night_club_booking_software | PHPJabbers Night Club Booking Software has stored XSS in the name parameter in the reservations tab. |
CWE-79
Cross-site Scripting |
CVE-2017-12812 | 2024-11-21 12:10 | 2017-12-30 | Show | GitHub Exploit DB Packet Storm |
| 198275 | 6.1 |
MEDIUM
Network |
stivasoft | phpjabbers_star_rating_script | PHPJabbers Star Rating Script 4.0 has stored XSS via a rating item. |
CWE-79
Cross-site Scripting |
CVE-2017-12811 | 2024-11-21 12:10 | 2017-12-30 | Show | GitHub Exploit DB Packet Storm |
| 198276 | 6.1 |
MEDIUM
Network |
stivasoft | phpjabbers_newsletter_script | PHPJabbers PHP Newsletter Script 4.2 has stored XSS in lists in the admin panel. |
CWE-79
Cross-site Scripting |
CVE-2017-12810 | 2024-11-21 12:10 | 2017-12-30 | Show | GitHub Exploit DB Packet Storm |
| 198277 | 7.8 |
HIGH
Local |
tracker-software | pdf-xchange_viewer | The launchURL function in PDF-XChange Viewer 2.5 (Build 314.0) might allow remote attackers to execute arbitrary code via a crafted PDF file. |
CWE-20
Improper Input Validation |
CVE-2017-13056 | 2024-11-21 12:10 | 2017-12-28 | Show | GitHub Exploit DB Packet Storm |
| 198278 | 7.5 |
HIGH
Network |
siemens |
simatic_s7-200_firmware simatic_s7-400pn_v6_firmware simatic_s7-400h_v6_firmware simatic_s7-400pn\/dp_v7_firmware simatic_s7-410_v8_firmware simatic_s7-300_firmware simatic_s7-1200_… |
Specially crafted packets sent to port 161/udp could cause a denial of service condition. The affected devices must be restarted manually. | - | CVE-2017-12741 | 2024-11-21 12:10 | 2017-12-26 | Show | GitHub Exploit DB Packet Storm |
| 198279 | 5.9 |
MEDIUM
Network |
siemens | logo\!_soft_comfort | Siemens LOGO! Soft Comfort (All versions before V8.2) lacks integrity verification of software packages downloaded via an unprotected communication channel. This could allow a remote attacker to mani… |
CWE-345
Insufficient Verification of Data Authenticity |
CVE-2017-12740 | 2024-11-21 12:10 | 2017-12-26 | Show | GitHub Exploit DB Packet Storm |
| 198280 | 8.8 |
HIGH
Adjacent |
siemens |
scalance_xb-200_firmware scalance_xc-200_firmware scalance_xp-200_firmware scalance_xr300-wg_firmware scalance_xr-500_firmware scalance_xm-400_firmware ruggedcom_ros |
A vulnerability has been identified in RUGGEDCOM ROS for RSL910 devices (All versions < ROS V5.0.1), RUGGEDCOM ROS for all other devices (All versions < ROS V4.3.4), SCALANCE XB-200/XC-200/XP-200/XR3… |
CWE-665
Improper Initialization |
CVE-2017-12736 | 2024-11-21 12:10 | 2017-12-26 | Show | GitHub Exploit DB Packet Storm |